Loading HuntDB...

Vulnerabilities

CVE-2023-26299

UNKNOWN

A potential Time-of-Check to Time-of-Use (TOCTOU) vulnerability has been identified in certain HP PC products using AMI UEFI Firmware (system BIOS), which might allow arbitrary code execution. AMI has released updates to mitigate the potential vulnerability.

Published Jun 30, 2023

CVE-2023-1329

UNKNOWN

A potential security vulnerability has been identified for certain HP multifunction printers (MFPs). The vulnerability may lead to Buffer Overflow and/or Remote Code Execution when running HP Workpath solutions on potentially affected products.

Published Jun 14, 2023

CVE-2022-31646

UNKNOWN

Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.

Published Jun 14, 2023

CVE-2022-31645

UNKNOWN

Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.

Published Jun 14, 2023

CVE-2022-31644

UNKNOWN

Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.

Published Jun 14, 2023

CVE-2022-31642

UNKNOWN

Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.

Published Jun 14, 2023

CVE-2022-31641

UNKNOWN

Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.

Published Jun 14, 2023

CVE-2022-31640

UNKNOWN

Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.

Published Jun 14, 2023

CVE-2023-1707

UNKNOWN

Certain HP Enterprise LaserJet and HP LaserJet Managed Printers are potentially vulnerable to information disclosure when IPsec is enabled with FutureSmart version 5.6.

Published Jun 13, 2023

CVE-2022-31639

UNKNOWN

Potential time-of-check to time-of-use (TOCTOU) vulnerabilities have been identified in the BIOS for certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.

Published Jun 13, 2023

CVE-2022-31638

UNKNOWN

Potential time-of-check to time-of-use (TOCTOU) vulnerabilities have been identified in the BIOS for certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.

Published Jun 13, 2023

CVE-2022-31637

UNKNOWN

Potential time-of-check to time-of-use (TOCTOU) vulnerabilities have been identified in the BIOS for certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.

Published Jun 13, 2023

CVE-2022-31636

UNKNOWN

Potential time-of-check to time-of-use (TOCTOU) vulnerabilities have been identified in the BIOS for certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.

Published Jun 13, 2023

CVE-2022-31635

UNKNOWN

Potential time-of-check to time-of-use (TOCTOU) vulnerabilities have been identified in the BIOS for certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.

Published Jun 13, 2023

CVE-2023-32674

UNKNOWN

Certain versions of HP PC Hardware Diagnostics Windows are potentially vulnerable to buffer overflow.

Published Jun 12, 2023

CVE-2023-32673

UNKNOWN

Certain versions of HP PC Hardware Diagnostics Windows, HP Image Assistant, and HP Thunderbolt Dock G2 Firmware are potentially vulnerable to elevation of privilege.

Published Jun 12, 2023

CVE-2023-26298

UNKNOWN

Previous versions of HP Device Manager (prior to HPDM 5.0.10) could potentially allow command injection and/or elevation of privileges.

Published Jun 12, 2023

CVE-2023-26297

UNKNOWN

Previous versions of HP Device Manager (prior to HPDM 5.0.10) could potentially allow command injection and/or elevation of privileges.

Published Jun 12, 2023

CVE-2023-26296

UNKNOWN

Previous versions of HP Device Manager (prior to HPDM 5.0.10) could potentially allow command injection and/or elevation of privileges.

Published Jun 12, 2023

CVE-2023-26295

UNKNOWN

Previous versions of HP Device Manager (prior to HPDM 5.0.10) could potentially allow command injection and/or elevation of privileges.

Published Jun 12, 2023

CVE-2023-26294

UNKNOWN

Previous versions of HP Device Manager (prior to HPDM 5.0.10) could potentially allow command injection and/or elevation of privileges.

Published Jun 12, 2023

CVE-2022-43778

UNKNOWN

Potential Time-of-Check to Time-of Use (TOCTOU) vulnerabilities have been identified in the HP BIOS for certain HP PC products which may allow arbitrary code execution, denial of service, and information disclosure.

Published Jun 12, 2023

CVE-2022-43777

UNKNOWN

Potential Time-of-Check to Time-of Use (TOCTOU) vulnerabilities have been identified in the HP BIOS for certain HP PC products which may allow arbitrary code execution, denial of service, and information disclosure.

Published Jun 12, 2023

CVE-2022-27541

UNKNOWN

Potential Time-of-Check to Time-of Use (TOCTOU) vulnerabilities have been identified in the HP BIOS for certain HP PC products which may allow arbitrary code execution, denial of service, and information disclosure.

Published Jun 12, 2023

CVE-2022-27539

UNKNOWN

Potential Time-of-Check to Time-of Use (TOCTOU) vulnerabilities have been identified in the HP BIOS for certain HP PC products which may allow arbitrary code execution, denial of service, and information disclosure.

Published Jun 12, 2023

CVE-2019-16283

UNKNOWN

A potential security vulnerability has been identified with a version of the HP Softpaq installer that can lead to arbitrary code execution.

Published Jun 09, 2023

CVE-2023-1526

UNKNOWN

Certain DesignJet and PageWide XL TAA compliant models may have risk of potential information disclosure if the hard disk drive is physically removed from the printer.

Published Apr 28, 2023

CVE-2023-27973

UNKNOWN

Certain HP LaserJet Pro print products are potentially vulnerable to Heap Overflow and/or Remote Code Execution.

Published Apr 28, 2023

CVE-2023-27972

UNKNOWN

Certain HP LaserJet Pro print products are potentially vulnerable to Buffer Overflow and/or Remote Code Execution.

Published Apr 28, 2023

CVE-2023-27971

UNKNOWN

Certain HP LaserJet Pro print products are potentially vulnerable to Buffer Overflow and/or Elevation of Privilege.

Published Apr 28, 2023

CVE-2022-31643

UNKNOWN

A potential security vulnerability has been identified in the system BIOS for certain HP PC products which may allow loss of integrity. HP is releasing firmware updates to mitigate the potential vulnerability.

Published Apr 28, 2023

CVE-2022-38396

UNKNOWN

HP Factory Preinstalled Images on certain systems that shipped with Windows 10 versions 20H2 and earlier OS versions might allow escalation of privilege via execution of certain files outside the restricted path. This potential vulnerability was remediated starting with Windows 10 versions 21H2 on October 31, 2021.

Published Feb 03, 2023

CVE-2022-43779

UNKNOWN

A potential Time-of-Check to Time-of-Use (TOCTOU) vulnerability has been identified in certain HP PC products using AMI UEFI Firmware (system BIOS) which might allow arbitrary code execution, denial of service, and information disclosure. AMI has released updates to mitigate the potential vulnerability.

Published Feb 03, 2023

CVE-2021-3439

UNKNOWN

HP has identified a potential vulnerability in BIOS firmware of some Workstation products. Firmware updates are being released to mitigate these potential vulnerabilities.

Published Jan 30, 2023

CVE-2022-23455

UNKNOWN

Potential security vulnerabilities have been identified in HP Support Assistant. These vulnerabilities include privilege escalation, compromise of integrity, allowed communication with untrusted clients, and unauthorized modification of files.

Published Jan 30, 2023

CVE-2022-23454

UNKNOWN

Potential security vulnerabilities have been identified in HP Support Assistant. These vulnerabilities include privilege escalation, compromise of integrity, allowed communication with untrusted clients, and unauthorized modification of files.

Published Jan 30, 2023

CVE-2022-23453

UNKNOWN

Potential security vulnerabilities have been identified in HP Support Assistant. These vulnerabilities include privilege escalation, compromise of integrity, allowed communication with untrusted clients, and unauthorized modification of files.

Published Jan 30, 2023

CVE-2022-27537

UNKNOWN

Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure. HP is releasing BIOS updates to mitigate these potential vulnerabilities.

Published Jan 30, 2023

CVE-2021-3809

UNKNOWN

Potential security vulnerabilities have been identified in the BIOS (UEFI Firmware) for certain HP PC products, which might allow arbitrary code execution. HP is releasing firmware updates to mitigate these potential vulnerabilities.

Published Jan 30, 2023

CVE-2021-3808

UNKNOWN

Potential security vulnerabilities have been identified in the BIOS (UEFI Firmware) for certain HP PC products, which might allow arbitrary code execution. HP is releasing firmware updates to mitigate these potential vulnerabilities.

Published Jan 30, 2023

CVE-2022-27538

UNKNOWN

A potential Time-of-Check to Time-of-Use (TOCTOU) vulnerability has been identified in the BIOS for certain HP PC products which may allow arbitrary code execution, denial of service, and information disclosure. HP is releasing BIOS updates to mitigate the potential vulnerability.

Published Jan 30, 2023

CVE-2022-3990

UNKNOWN

HPSFViewer might allow Escalation of Privilege. This potential vulnerability was remediated on July 29th, 2022. Customers who opted for automatic updates should have already received the remediation.

Published Jan 30, 2023

CVE-2022-46356

UNKNOWN

Potential vulnerabilities have been identified in HP Security Manager which may allow escalation of privilege, arbitrary code execution, and information disclosure.

Published Jan 27, 2023

CVE-2022-46357

UNKNOWN

Potential vulnerabilities have been identified in HP Security Manager which may allow escalation of privilege, arbitrary code execution, and information disclosure.

Published Jan 27, 2023

CVE-2022-46358

UNKNOWN

Potential vulnerabilities have been identified in HP Security Manager which may allow escalation of privilege, arbitrary code execution, and information disclosure.

Published Jan 27, 2023

CVE-2022-46359

UNKNOWN

Potential vulnerabilities have been identified in HP Security Manager which may allow escalation of privilege, arbitrary code execution, and information disclosure.

Published Jan 27, 2023

CVE-2021-3942

UNKNOWN

Certain HP Print products and Digital Sending products may be vulnerable to potential remote code execution and buffer overflow with use of Link-Local Multicast Name Resolution or LLMNR.

Published Nov 22, 2022

CVE-2021-3919

UNKNOWN

A potential security vulnerability has been identified in OMEN Gaming Hub and in HP Command Center which may allow escalation of privilege and/or denial of service. HP has released software updates to mitigate the potential vulnerability.

Published Nov 21, 2022

CVE-2021-3821

UNKNOWN

A potential security vulnerability has been identified for certain HP multifunction printers (MFPs). The vulnerability may lead to Denial of Service when running HP Workpath solutions on potentially affected products.

Published Nov 21, 2022

CVE-2021-3661

UNKNOWN

A potential security vulnerability has been identified in certain HP Workstation BIOS (UEFI firmware) which may allow arbitrary code execution. HP is releasing firmware mitigations for the potential vulnerability.

Published Nov 21, 2022